Highlights
- Persistent IPv4/IPv6 address and CIDR blocking in SysOp > Telemetry > Security and telnet
sysop/ipblock, with expiration and separate active/history views (#277). - Public-web filter previews, two-condition AND editing, spotter DXCC selection, and shared deciding-rule explanations with telnet
show/filter test. - Clearer separation of Peers & Links, Protocol Health, and Topology. Protocol History spans the full width above Connection Alerts and Rejected Frames, with responsive mobile layouts.
- Restored SysOp RBN telemetry using a bounded 200-spot in-memory sample. RBN remains live-only and is not persisted to SQLite.
- Automatic RBN status refresh without overwriting unsaved settings, corrected Skimmer
-#review handling, and clearer QRZ runtime-agent defaults.
Operational Notes
- Address blocks apply to new inbound connections and web requests; they do not disconnect existing sessions or block outbound peering. Configure trusted proxies explicitly when the reverse proxy is not on loopback.
- Filter previews explain stored rules and web access/subscription policy, not every ingestion, browser-filter, or throttling decision.
- PY14 distributed security advisories (#276) are not included in this release.
- Use the supported upgrade workflow to preserve node configuration and data. The changes have been deployed and checked on pycluster.ai3i.net.
Verification
- 693 default regression tests passed locally.
- All 49 explicit loopback-listener integration tests passed in an isolated Debian checkout (742 tests total).
- Desktop/mobile browser checks covered layout, filter previews, and RBN status refresh without changing unsaved settings.
- Live deployment checks covered service health, configuration preservation, RBN reconnection, and temporary IPv4/IPv6 block enforcement. No test spots or announcements were transmitted.